Microsoft Edge: Use Primary work profile as default profile to open external links

🚨 The Signal: Microsoft Edge will now default to opening external links in the primary work profile for enterprise users. This change aims to improve security by isolating work-related browsing from personal use, reducing data leakage risks.

The Impact

All enterprise users are affected, with a positive impact on reducing accidental data exposure and improving work-personal separation.

  • End Users: Reduced risk of accidentally sharing work data with personal accounts.
  • Security Teams: Improved data segregation posture, simplifying incident response.
  • Admins: New policy available to manage default profile behavior for external links.

The Action

  1. Review the 'EdgeOpenExternalLinksWithPrimaryWorkProfileEnabled' policy in Microsoft Intune or Group Policy.
  2. Decide whether to disable this feature based on your organisation's specific browsing policies.
  3. Communicate the change to end-users, explaining the benefits of work/personal profile separation.

Domain: M365-Apps · Impact: low · Workload: M365 Apps · Essential Eight: User Application Hardening · ISM: ISM-1412, ISM-1485, ISM-1486, ISM-1542, ISM-1585, ISM-1667, ISM-1668, ISM-1669, ISM-1670, ISM-1823, ISM-1824, ISM-1859, ISM-1860